Chameleon Malware Poses as CRM App
ID: 86ca0773-2760-5398-956c-5b871b362255
STIX ID: report--86ca0773-2760-5398-956c-5b871b362255
Feed Name: KnowBe4 Blog
Threat Score
Researchers at ThreatFabric warn of an active phishing campaign distributing the Chameleon Android malware by impersonating CRM applications and targeting users in Canada and Europe; attackers use fake login pages and social engineering to trick victims into reinstalling an app that installs Chameleon (bypassing Android 13+ AccessibilityService restrictions) and then harvests credentials and keylogs, posing a significant risk to business banking accounts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
